Nova Patents
US8990929B2

Auditing application activities

Summary by NHIP

Compiled Application Activity Audit

The method analyzes compiled applications to identify callable methods and correlate them with controllable activities. A compiler-modified process writes references to a document, strips extraneous information, and matches them against stored references to indicate activities and permission settings via a user interface.

Claim Score by NHIP

Read claim 1, the broadest

Abstract

A compiled application may be audited by analyzing the compiled application to identify methods that may be called during execution of the compiled application. The identified methods may be correlated with controllable activities, i.e., those activities facilitated by public APIs. An audit report may be used to report to a user or administrator indications that the compiled application may attempt certain activities.

US8990929B2, drawing sheet 1
Sheet 1 of 9

Term

2.9 yearsleft in the term

Expires 26 August 2029, including 1,101 days of term adjustment.

  1. Priority and filed
  2. Granted
  3. Today
  4. Expires

42 claims: 3 independent, 39 dependent

  1. 1
    Broadest claimClaim Score 50, average(NHIP)A method of processing a compiled application, said method comprising:identifying, using a compiler modified to include a method identifying option, a method that may be called during execution of said compiled application, the identifying including: writing, to a first method-referencing document, a reference to said method that may be called during execution of said compiled application;and stripping extraneous information from said reference to generate a stripped reference to said method that may be called during execution of said compiled application;selecting a stored reference, wherein said stored reference relates to a particular method and said particular method is associated with an activity;determining that said particular method matches said stripped reference to said method that may be called during execution of said compiled application;responsive to determining that said particular method matches said stripped reference to said method that may be called during execution of said compiled application, indicating via a user interface that said compiled application may attempt said activity;indicating a current permission setting associated with said activity;and providing a user interface for changing, prior to execution of said compiled application, said current permission setting associated with said activity.
  2. 21
    A computing apparatus for processing a compiled application, said computing apparatus comprising a processor adapted to:identify, using a compiler modified to include a method identifying option, a method that may be called during execution of said compiled application, by: writing, to a first method-referencing document, a reference to said method that may be called during execution of said compiled application;and stripping extraneous information from said reference to generate a stripped reference to said method that may be called during execution of said compiled application;select a stored reference, wherein said stored reference relates to a particular method and said particular method is associated with an activity;determine that said particular method matches said stripped reference to said method that may be called during execution of said compiled application;indicate that said compiled application may attempt said activity, responsive to determining that said particular method matches said stripped reference to said method that may be called during execution of said compiled application;indicate a current permission setting associated with said activity;and provide a user interface for changing, prior to execution of said compiled application, said current permission setting associated with said activity.
  3. 22
    A computer readable medium containing computer-executable instructions that, when performed by processor, cause said processor to:identify, using a compiler modified to include a method identifying option, a method that may be called during execution of said compiled application, the identifying including: writing, to a first method-referencing document, a reference to said method that may be called during execution of said compiled application;and stripping extraneous information from said reference to generate a stripped reference to said method that may be called during execution of said compiled application;select a stored reference, wherein said stored reference relates to a particular method and said particular method is associated with an activity;determine that said particular method matches said stripped reference to said method that may be called during execution of said compiled application;and indicate that said compiled application may attempt said activity, responsive to determining that said particular method matches said stripped reference to said method that may be called during execution of said compiled application;indicate a current permission setting associated with said activity;and provide a user interface for changing, prior to execution of said compiled application, said current permission setting associated with said activity.